SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Apache Struts Struts1 Plugin Remote Code Execution 3

Category: WEB-ATTACKS      

The Struts 1 plugin in Apache Struts 2.3.x might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-9791


Relevant Information